Modern-day malware is much more menacing and vicious than ever before. They can evade early detection not just by traditional security tools but even advanced solutions like anti-malware, intrusion prevention …
MajikPOS – A POS Malware Attack & Steal Payment Data From Credit/Debit Cards
Recently, Group-IB’s cybersecurity researchers have discovered that threat actors exploiting two vulnerabilities from point-of-sale payment devices and stolen more than 167,000 credit cards data. During a security audit conducted by …
Windows Event Log Bugs let Hackers Perform DOS & Remotely Crash Event Log Apps
An event log can be remotely cleared and backed up with the help of ElfClearELFW, which is an MS-EVEN function. And this function also involves two parameters and here below …
SideWinder Hacker Group Target Government & Military Using WarHawk Tool
Zscaler ThreatLabz found a new backdoor called ‘WarHawk’ being used by the SideWinder APT threat group to target entities in Pakistan. The SideWinder group goes by the names Rattlesnake, Hardcore …
Chrome Extension With 1 Million Installation Stealing Data From Brower
It has recently been discovered by the security researchers at Guardio Labs that a new malvertising campaign is on the loose. This malicious campaign is intended to achieve the following …
6 Best Free Malware Analysis Tools to Break Down the Malware Samples – 2022
The malware analysis tools simply allow us to know in a quick and effective way, what actions a threat makes in the system. In this way, you can easily collect …
Hackers Use New Sophisticated Version of Android Spyware to Conduct Mobile Surveillance
Researchers at ESET found a new version of the Android malware ‘FurBall’ targeting Iranian citizens in mobile surveillance campaigns conducted by the Domestic Kitten hacking group, also called APT-C-50. Earlier …
Azure Service Fabric Explorer Flaw Let Attacker Gain Administrator Privileges
Microsoft Azure Service Fabric has been exposed to a spoofing vulnerability that has been unveiled recently in a proof-of-concept exploit. The flaw has been tracked as CVE-2022-35829 with medium severity …
Beware – New Fully Undetectable PowerShell Backdoor Delivered as Weaponized Document
The SafeBreach Labs research team has detected a new fully undetectable (FUD) In this case, two PowerShell scripts are designed, the first one is to connect to a remote command-and-control …
Microsoft Data Breach – Sensitive Information Exposed From Misconfigured Server
The security researchers at threat intelligence firm SOCRadar informed Microsoft of a misconfigured Microsoft endpoint on September 24, 2022. Sensitive information for some Microsoft customers was exposed by a misconfigured …










